CVE-2006-2018
Published Apr 25, 2006
Last updated 6 years ago
Overview
- Description
- SQL injection vulnerability in calendar.php in vBulletin 3.0.x allows remote attackers to execute arbitrary SQL commands via the eventid parameter. NOTE: the affected version has been disputed by the vendor. It appears that this is the same issue as CVE-2004-0036, which was fixed in 2.3.4.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Evaluator
- Comment
- -
- Impact
- -
- Solution
- -
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:jelsoft:vbulletin:3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EA1A0EF6-1267-463E-B4F7-83D2ACB64E43" }, { "criteria": "cpe:2.3:a:jelsoft:vbulletin:3.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D66CAB0A-2A0A-47EF-A328-C341CCC1BA76" }, { "criteria": "cpe:2.3:a:jelsoft:vbulletin:3.0.0_beta_2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3AFED411-1291-4E03-A160-CC9F1AD03D7B" }, { "criteria": "cpe:2.3:a:jelsoft:vbulletin:3.0.0_can4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0E9FE483-4367-47E7-9D09-043955998C8C" }, { "criteria": "cpe:2.3:a:jelsoft:vbulletin:3.0.0_rc4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0BC85ED9-7491-43D3-B34D-1CB07836888F" }, { "criteria": "cpe:2.3:a:jelsoft:vbulletin:3.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "90BE006A-0F2D-4F3A-A335-176C5A5978E9" }, { "criteria": "cpe:2.3:a:jelsoft:vbulletin:3.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "151876D4-B72E-4D5F-A151-5A3DCAE51299" }, { "criteria": "cpe:2.3:a:jelsoft:vbulletin:3.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "984E8E57-57E5-4FEC-9210-4083AD400F94" }, { "criteria": "cpe:2.3:a:jelsoft:vbulletin:3.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1760CC7E-5297-4F8A-8A28-3689F6075CAE" }, { "criteria": "cpe:2.3:a:jelsoft:vbulletin:3.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "74013F50-0677-454E-8E6C-101CF210E989" }, { "criteria": "cpe:2.3:a:jelsoft:vbulletin:3.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "29DC951B-860E-4AF1-8908-71C7099FB19A" }, { "criteria": "cpe:2.3:a:jelsoft:vbulletin:3.0.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "36356B31-5EC5-4689-92CD-883088587936" }, { "criteria": "cpe:2.3:a:jelsoft:vbulletin:3.0_beta_2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0A4E9C82-64CF-4487-8947-ED745C41945A" } ], "operator": "OR" } ] } ]